Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

edge-29.9.3 #11409

Merged
merged 3 commits into from
Sep 22, 2023
Merged

edge-29.9.3 #11409

merged 3 commits into from
Sep 22, 2023

Commits on Sep 22, 2023

  1. edge-29.9.3

    This edge release updates the proxy's dependency on the `rustls` library to
    patch security vulnerability [RUSTSEC-2023-0052]  (GHSA-8qv2-5vq6-g2g7), a
    potential CPU usage denial-of-service attack when acceting a TLS handshake from
    an untrusted peer with a maliciously-crafted certificate. Furthermore, this
    edge release contains a few improvements to the control plane and jaeger
    extension Helm charts.
    
    * Addressed security vulnerability [RUSTSEC-2023-0052] in the proxy by updating
      its dependency on the `rustls` library
    * Added a `prometheusUrl` field for the heartbeat job in the control plane Helm
      chart (thanks @david972!) ([#11343]; fixes [#11342])
    * Introduced support for arbitrary labels in the `podMonitors` field in the
      control plane Helm chart (thanks @jseiser!) ([#11222]; fixes [#11175])
    * Added support for config merge and Deployment environment to
      `opentelemetry-collector` in the jaeger extension (thanks @iAnomaly!)
      ([#11283])
    
    [#11283]: #11283
    [#11222]: #11222
    [#11175]: #11175
    [#11343]: #11343
    [#11342]: #11342
    
    Signed-off-by: Matei David <[email protected]>
    mateiidavid committed Sep 22, 2023
    Configuration menu
    Copy the full SHA
    7b1e5e3 View commit details
    Browse the repository at this point in the history
  2. Update rustsec link

    Signed-off-by: Matei David <[email protected]>
    mateiidavid committed Sep 22, 2023
    Configuration menu
    Copy the full SHA
    0de0232 View commit details
    Browse the repository at this point in the history
  3. Update rustsec link for bullet point

    Signed-off-by: Matei David <[email protected]>
    mateiidavid committed Sep 22, 2023
    Configuration menu
    Copy the full SHA
    be1e426 View commit details
    Browse the repository at this point in the history